CVE-2025-53695

Publication date

2025-07-28 14:05:36

Family

Dragos

State

PUBLISHED

Description

OS Command Injection in iSTAR Ultra products web application allows an authenticated attacker to gain even more privileged access (root user) to the device firmware.